microsoft office picture manager.exe

Microsoft Office Picture Manager

Microsoft Corporation

This is a setup program which is used to install the application. The file has been seen being downloaded from s10155.chomikuj.pl and multiple other hosts.
Publisher:
Microsoft Corporation

Product:
Microsoft Office Picture Manager

Version:
12.0.4518.1014

MD5:
2d600e7a5fb2b80920c75cbd86987c01

SHA-1:
86d991e4135481d8f5a65c627650e724098fc7f8

Scanner detections:
0 / 68

Status:
Clean (as of last analysis)

Analysis date:
12/27/2024 12:53:31 AM UTC  (today)

File size:
36 KB (36,853 bytes)

Product version:
12.0.4518.1014

Copyright:
© 2006 Microsoft Corporation. All rights reserved.

Original file name:
OIS.exe

File type:
Executable application (Win32 EXE)

Common path:
C:\Program Files\office xp\microsoft office picture manager.exe

File PE Metadata
Compilation timestamp:
10/27/2006 4:59:11 AM

OS version:
4.0

OS bitness:
Win32

Subsystem:
Windows GUI

Linker version:
8.0

CTPH (ssdeep):
384:jFHq+PwxYb5lI36c3nFe1v4WIbWtvz6K2Qdb0lcQ3EmBMZsl2VW5VbC3W/ddBmv:BF5lM6YKvy6ljzb0l2Zsl2KFmv

Entry address:
0x1ABB

Entry point:
9C, 60, 68, 53, 74, 41, 6C, 68, 54, 68, 49, 6E, E8, 00, 00, 00, 00, 58, BB, CC, 1A, 00, 00, 2B, C3, 50, 68, 00, 00, 00, 30, 68, 00, 28, 00, 00, 68, C8, 00, 00, 00, E8, 2C, FF, FF, FF, E9, 90, FF, FF, FF, CC, CC, 55, 8B, EC, 83, C4, F4, FC, 53, 57, 56, 8B, 75, 08, 8B, 7D, 0C, C7, 45, FC, 08, 00, 00, 00, 33, DB, BA, 00, 00, 00, 80, 43, 33, C0, E8, 19, 01, 00, 00, 73, 0E, 8B, 4D, F8, E8, 27, 01, 00, 00, 02, 45, F7, AA, EB, E9, E8, 04, 01, 00, 00, 0F, 82, 96, 00, 00, 00, E8, F9, 00, 00, 00, 73, 5B, B9, 04, 00...
 
[+]

Code size:
6.5 KB (6,656 bytes)

The file microsoft office picture manager.exe has been seen being distributed by the following 5 URLs.

http://s10155.chomikuj.pl/File.aspx?e=839kblXsdJ7CBUPN-u4ImT335NvnQ6VOblEweCbssUJ8Ff77j3T7hpvCwH6ZSJgkvH6T15-B8xPBPWieqcIFyyZNnAZ19X-A9_onndPlNWVGLNLjXXH7gnYbl3DXsq0-8HM68dyASOci8kDkblABkA&pv=2

http://s10155.chomikuj.pl/File.aspx?e=839kblXsdJ7CBUPN-u4ImRQ6PGJs8aLnpqHLqukViQ_FZpKXZ9Ykz1d8-ffSek3GCrmtrSxoxfigpUQGly_gSNKgwQjCVSnvF4YmW2KuFHCkktHFgnIXd6gav2R_29aGlq1Y7N_8pwPKNnLXWFNfvYWln8_Cuq67vuxQRwDdwZ0&pv=2

http://s10155.chomikuj.pl/File.aspx?e=839kblXsdJ7CBUPN-u4ImRQ6PGJs8aLnpqHLqukViQ-ibOkIznROSWKvsSR-sfWBy7gaGiY8tF83BL-RS-77eQEktcF3IQeHHmtzJ2cnBGvdFk6D2u8wZ4EtUIfd7uPJRQRKjwjKvrkHZhpbhikkdvZ0Dquu4wWjZOBpgMpFgiA&pv=2

Scan microsoft office picture manager.exe - Powered by Reason Core Security